Back to skill

Security audit

CodeRabbit

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed CodeRabbit connector that can read and change organization data, but its sensitive actions are stated and require user confirmation.

Install this only if you want your agent to use OOMOL's oo CLI with your connected CodeRabbit account. Review prompts carefully before approving role, seat, or deletion actions, because those can change organization access or billing-related state.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger text says to use this skill for ANY CodeRabbit request, including reading, creating, updating, and deleting data. That broad routing can cause the agent to invoke a high-privilege integration even when a narrower or read-only path would be safer, increasing the chance of unintended state-changing actions or misuse from ambiguous prompts.

Static analysis

No suspicious patterns detected.